3 ms·
Someone who creates web apps should be intimately familiar with the techniques used by people who break into web apps. Dafydd Stuttard (book author) / PortSwig
by nlo 15y ago
Someone who creates web apps should be intimately familiar with the techniques used by people who break into web apps.
Dafydd Stuttard (book author) / PortSwigger created the Burp Suite web application security testing program, which I've found invaluable in performing security analysis of web apps during development.
- sudonim 15y agoMy previous comment is a little tongue in cheek, but it would be cool if they weren't perpetuating the media stereotype that hacker == cracker. A bunch of other sticklers on "Hacker News" bring it up when people misuse the term. http://searchyc.com/cracker+hacker http://searchyc.com/cracker+hacker
- chopsueyar 15y agoAs described in the article link, it is hacking. Kevin Mitnick was not a cracker, he was a hacker. Hacking has multiple definitions.
- p4bl0 15y agoAgreed. For instance someone who breaks into web apps but doesn't use this skill to sell user data or steal from users is not a cracker IMO, but a hacker (he could do this to satisfy its curiosity, for fun, or to tell the webmasters how to secure their web app better). Hacker is a word with many valid definitions.